CompTIA Security+ Practice Test of the Day 260708

Welcome to today’s CompTIA Security+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 3.2 (Given a scenario, apply security principles to secure enterprise infrastructure) from the CompTIA Security+ SY0-701 objectives.

This beginner-level practice test is inspired by the CompTIA Security+ (SY0-701) exam and is designed to help you reinforce key cybersecurity concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Security+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Security+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Security+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Security+ Study Guide (2026)

CompTIA Security+ Practice Test of the Day 260708
10 questions • Single best answer
Question 1
A network engineer at a manufacturing plant needs administrators to reach servers in a secure zone through one hardened, monitored host. Direct connections to those servers must be blocked. Which appliance meets this requirement?
    Question 2
    A security administrator configures a border firewall so that if the device crashes it stops passing all traffic, prioritizing protection over uptime. Availability is secondary here. Which failure mode is configured?
      Question 3
      An analyst deploys a sensor that receives a copy of network traffic from a SPAN port. It only generates alerts and cannot drop packets. Which deployment describes this device?
        Question 4
        A network engineer wants endpoints to authenticate before a switch grants LAN access, using EAP to exchange credentials. Unauthenticated devices should be denied at the port. Which standard provides this?
          Question 5
          A public retail web application is being targeted with SQL injection and cross-site scripting. The team wants a control that inspects HTTP requests and blocks malicious payloads. Which control fits best?
            Question 6
            A company with a large remote workforce wants networking and security functions delivered together from the cloud. Policy should apply near users rather than backhauling traffic to headquarters. Which model provides this convergence?
              Question 7
              An administrator builds an encrypted site-to-site tunnel between two data centers. It must secure IP packets at the network layer for all traffic between them. Which protocol suite provides this?
                Question 8
                An administrator wants to filter and cache employees' outbound web requests. Internal client addresses must stay hidden from external sites. Which appliance provides this function?
                  Question 9
                  A high-traffic e-commerce site faces heavy load during peak sales events. Incoming requests must spread across several backend web servers to maintain availability. Which appliance accomplishes this?
                    Question 10
                    After a hardening review, an analyst disables unused services, closes open ports, and removes default accounts on internet-facing servers. The goal is to shrink exploitable entry points. Which concept does this reduce?
                      Next step: Hands-on

                      Theory tested. Now put it into practice.

                      The exam checks what you know, but employers check what you can do.

                      HTB Academy’s guided labs cover the same ground hands-on, with you at the keyboard.

                      Build hands-on skills →

                      This is an affiliate link. If you sign up, The Cybersecurity Trail earns a commission at no cost to you.

                      Take more CompTIA Security+ practice tests

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top